Falhas do tipo CWE-295

695 resultados
CVE-2024-8287HIGHAnbox Management Service, in versions 1.17.0 through 1.23.0, does not validate the TLS certificate provided to it by the Anbox Stream Agent.EPSS 0.2%CVE-2024-12174LOWAn Improper Certificate Validation vulnerability exists in Tenable Security Center where an authenticated, privileged attacker could interceEPSS 0.2%CVE-2025-27377MEDIUMMissing Validation of Self-Signed Certificates in Altium Designer Allows Man-in-the-Middle AttacksEPSS 0.2%CVE-2026-42312MEDIUMpyload-ng: non-admin SETTINGS users can disable outbound TLS peer verificationEPSS 0.2%CVE-2025-39205HIGHA vulnerability exists in the IEC 61850 in MicroSCADA X SYS600 product. The certificate validation of the TLS protocol allows remote Man-in-EPSS 0.2%CVE-2026-40243LOWIncus OVN TLS verification accepts peer-supplied roots and permits endpoint impersonationEPSS 0.2%CVE-2024-31854HIGHA vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS serveEPSS 0.2%CVE-2026-48249HIGHOpen ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in rm/incs/mobile_login.inc.phpEPSS 0.2%CVE-2024-31853HIGHA vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.11). During establishment of a https connection to the TLS serveEPSS 0.2%CVE-2025-0309MEDIUMNetskope Client Local Elevation of PrivilegesEPSS 0.2%CVE-2026-48247HIGHOpen ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in incs/functions.inc.phpEPSS 0.2%CVE-2025-52598MEDIUMInsufficient certificate validationEPSS 0.2%CVE-2024-5918MEDIUMPAN-OS: Improper Certificate Validation Enables Impersonation of a Legitimate GlobalProtect UserEPSS 0.2%CVE-2023-6043HIGHA privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker to bypass integrity checks and executeEPSS 0.2%CVE-2025-70058HIGHAn issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0. The application disables TLS/SSL certifEPSS 0.2%CVE-2025-70045HIGHAn issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master. The application disables TLS/SSL certifEPSS 0.2%CVE-2026-48246HIGHOpen ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in ajax/reports.phpEPSS 0.2%CVE-2025-12047MEDIUMA vulnerability was reported in the Lenovo Scanner pro application during an internal security assessment that, under certain circumstances,EPSS 0.2%CVE-2025-36005MEDIUMIBM MQ Operator information disclosureEPSS 0.2%CVE-2026-45745HIGHTermix has improper certificate validation in Electron desktop client that enables MITM credential/token theftEPSS 0.2%